==================================
正在运行的进程
[PID: 440][\SystemRoot\System32\smss.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 496][\??\C:\WINDOWS\system32\csrss.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 520][\??\C:\WINDOWS\system32\winlogon.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 568][C:\WINDOWS\system32\services.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 580][C:\WINDOWS\system32\lsass.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 732][C:\WINDOWS\system32\svchost.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 792][C:\WINDOWS\system32\svchost.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 892][C:\WINDOWS\System32\svchost.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 960][C:\WINDOWS\system32\svchost.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 1068][C:\WINDOWS\system32\svchost.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 1164][d:\program files\rising\rfw\rfwsrv.exe] <Beijing Rising Technology Corporation Limited><3, 2, 0, 0>
[d:\program files\rising\rfw\Rfwdrv.dll] <Beijing Rising Technology Corporation Limited><3, 0, 1, 5>
[d:\program files\rising\rfw\rfwrule.dll] <Beijing Rising Technology Corporation Limited><3, 1, 0, 0>
[d:\program files\rising\rfw\rfwlog.dll] <Beijing Rising Technology Corporation Limited><3, 1, 0, 2>
[PID: 1288][C:\WINDOWS\system32\spoolsv.exe] <Microsoft Corporation><5.1.2600.2696 (xpsp_sp2_gdr.050610-1519)>
[C:\WINDOWS\system32\Primomonnt.dll] <N/A><N/A>
[C:\WINDOWS\System32\spool\PRTPROCS\W32X86\vprproc.dll] <Windows (R) 2000 DDK provider><5.00.2195.1620>
[PID: 1840][C:\WINDOWS\Explorer.EXE] <Microsoft Corporation><6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)>
[C:\WINDOWS\DOWNLO~1\CnsHook.dll] <北京三七二一科技有限公司><1, 0, 2, 7>
[C:\WINDOWS\system32\RavExt.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 13>
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 2, 0>
[C:\WINDOWS\Downloaded Program Files\Mbggc.dll] <Tencent><4, 0, 1, 11>
[C:\WINDOWS\Downloaded Program Files\Troumi.dll] <Tencent><4, 0, 1, 11>
[C:\WINDOWS\system32\xunleibho_v14.dll] <Thunder Networking Technologies,LTD><4, 6, 0, 62>
[C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll] <Adobe Systems Incorporated><7.0.5.2005092300>
[C:\PROGRA~1\FlashGet\jccatch.dll] <Amaze Soft><1, 1, 4, 0>
[C:\Program Files\Adobe\Acrobat 7.0\ActiveX\PDFShell.dll] <Adobe Systems, Inc.><7.0.0.0>
[C:\WINDOWS\DOWNLO~1\CnsMinIO.dll] <北京三七二一科技有限公司><1, 0, 3, 5>
[C:\WINDOWS\DOWNLO~1\cnsio.dll] <北京三七二一科技有限公司><1, 0, 2, 6>
[d:\KAV2005\KASocket.dll] <Kingsoft Corporation><2005, 2, 22, 233>
[d:\KAV2005\KAScript.DLL] <Kingsoft Corporation><2005, 4, 1, 53>
[d:\KAV2005\KAEPlat.DLL] <Kingsoft Corp.><2004, 11, 26, 53>
[d:\KAV2005\KAEMem.DAT] <Kingsoft><2004, 11, 9, 11>
[C:\WINDOWS\system32\msdmo.dll] <N/A><N/A>
[PID: 112][C:\WINDOWS\system32\Rundll32.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 2, 0>
[C:\WINDOWS\DOWNLO~1\CnsMinIO.dll] <北京三七二一科技有限公司><1, 0, 3, 5>
[C:\WINDOWS\DOWNLO~1\cnsio.dll] <北京三七二一科技有限公司><1, 0, 2, 6>
[C:\WINDOWS\DOWNLO~1\CnsMinEx.dll] <国风因特软件(北京)有限公司><1, 0, 2, 7>
[C:\WINDOWS\Downloaded Program Files\Mbggc.dll] <Tencent><4, 0, 1, 11>
[d:\KAV2005\KASocket.dll] <Kingsoft Corporation><2005, 2, 22, 233>
[PID: 220][C:\WINDOWS\System32\alg.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 352][C:\WINDOWS\system32\conime.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 2, 0>
[d:\KAV2005\KASocket.dll] <Kingsoft Corporation><2005, 2, 22, 233>
[PID: 1572][C:\Program Files\Microsoft Office\OFFICE11\OUTLOOK.EXE] <Microsoft Corporation><11.0.5510>
[C:\WINDOWS\Downloaded Program Files\Mbggc.dll] <Tencent><4, 0, 1, 11>
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 2, 0>
[d:\KAV2005\KASocket.dll] <Kingsoft Corporation><2005, 2, 22, 233>
[PID: 2428][C:\WINDOWS\System32\svchost.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 3428][d:\KAV2005\KWatch.EXE] <Kingsoft Corporation><2005, 4, 24, 48>
[d:\KAV2005\KAVIPC2.DLL] <Kingsoft Corporation><2004, 12, 28, 20>
[d:\KAV2005\KAEPlat.DLL] <Kingsoft Corp.><2004, 11, 26, 53>
[d:\KAV2005\KAEMem.DAT] <Kingsoft><2004, 11, 9, 11>
[PID: 2740][d:\KAV2005\KavStart.exe] <Kingsoft Corporation><2005, 5, 31, 145>
[d:\KAV2005\KAVIPC2.DLL] <Kingsoft Corporation><2004, 12, 28, 20>
[C:\WINDOWS\Downloaded Program Files\Mbggc.dll] <Tencent><4, 0, 1, 11>
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 2, 0>
[d:\KAV2005\KAVPassp.dll] <Kingsoft Corporation><2005, 6, 20, 101>
[d:\KAV2005\KASocket.dll] <Kingsoft Corporation><2005, 2, 22, 233>
[PID: 3448][d:\KAV2005\KPfwSvc.EXE] <Kingsoft Corporation><2004, 12, 19, 24>
[PID: 3536][d:\KAV2005\KMailMon.EXE] <Kingsoft Corporation><2005, 3, 16, 69>
[d:\KAV2005\KAntiSpm.dll] <N/A><1, 0, 0, 2>
[d:\KAV2005\KAVIPC2.DLL] <Kingsoft Corporation><2004, 12, 28, 20>
[C:\WINDOWS\Downloaded Program Files\Mbggc.dll] <Tencent><4, 0, 1, 11>
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 2, 0>
[d:\KAV2005\KAECall2.DLL] <Kingsoft Corporation><2004, 12, 28, 7>
[d:\KAV2005\KAEPlat.DLL] <Kingsoft Corp.><2004, 11, 26, 53>
[d:\KAV2005\KAEMem.DAT] <Kingsoft><2004, 11, 9, 11>
[d:\KAV2005\KAConfig.DLL] <Kingsoft Corporation><2005, 3, 23, 30>
[d:\KAV2005\KASocket.dll] <Kingsoft Corporation><2005, 2, 22, 233>
[PID: 3640][d:\KAV2005\KavPFW.exe] <Kingsoft Corporation><2005, 5, 24, 531>
[C:\WINDOWS\Downloaded Program Files\Mbggc.dll] <Tencent><4, 0, 1, 11>
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 2, 0>
[d:\KAV2005\KASocket.dll] <Kingsoft Corporation><2005, 2, 22, 233>
[d:\KAV2005\KAVIPC2.DLL] <Kingsoft Corporation><2004, 12, 28, 20>
[d:\KAV2005\KAConfig.DLL] <Kingsoft Corporation><2005, 3, 23, 30>
[d:\KAV2005\FiltList.dll] <N/A><N/A>
[d:\KAV2005\KAEPlat.DLL] <Kingsoft Corp.><2004, 11, 26, 53>
[d:\KAV2005\KAEMem.DAT] <Kingsoft><2004, 11, 9, 11>
[d:\KAV2005\KAScript.DLL] <Kingsoft Corporation><2005, 4, 1, 53>
[PID: 3980][D:\TDdownload\sreng2\SREng.exe] <Smallfrogs Studio><2.0.12.350>
[C:\WINDOWS\Downloaded Program Files\Mbggc.dll] <Tencent><4, 0, 1, 11>
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 2, 0>
[d:\KAV2005\KASocket.dll] <Kingsoft Corporation><2005, 2, 22, 233>
==================================
文件关联
.TXT OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.EXE OK. ["%1" %*]
.COM OK. ["%1" %*]
.PIF OK. ["%1" %*]
.REG OK. [regedit.exe "%1"]
.BAT OK. ["%1" %*]
.SCR OK. ["%1" /S]
.CHM OK. ["C:\WINDOWS\hh.exe" %1]
.HLP OK. [%SystemRoot%\System32\winhlp32.exe %1]
.INI OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.INF OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.VBS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK OK. [{00021401-0000-0000-C000-000000000046}]